Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already flag read-only, idempotent, non-destructive, closed-world behavior, and the description adds meaningful context on top: the data is normalized to schemaVersion 2, patient is fixed/fictional, consent and sync are simulated, and empty categories are a fixture artifact rather than meaningful absence. No contradictions.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.